๐บ๐ธ
TPI-Abuse
2026-10-06 20:12:44
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 104.234.32.119 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.234.32.119 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 16:12:31.508313 2026] [security2:error] [pid 559:tid 559] [client 104.234.32.119:65365] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.94"] [uri "/laravel/.env"] [unique_id "asVWL2ezw3YbjgvDp1oe4AAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-06 11:23:08
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 104.234.32.119 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.234.32.119 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 07:23:01.067516 2026] [security2:error] [pid 1516:tid 1516] [client 104.234.32.119:21641] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.219"] [uri "/wp-content/.env"] [unique_id "asTaFdtH6z4g802n8Lh6uAAAABw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-06 07:53:34
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 104.234.32.119 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.234.32.119 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Oct 06 03:53:28.781855 2026] [security2:error] [pid 16550:tid 16550] [client 104.234.32.119:55971] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.70"] [uri "/conf/.env"] [unique_id "asSo-OASpJD2-T7-vvi7bAAAAAo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ญ๐บ
whitehoodie
2026-10-06 03:41:17
(5 days ago)
AUTOMATED REPORT: Trying to access /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php
Hacking
Bad Web Bot
Web App Attack
๐ซ๐ฎ
geot
2026-10-06 01:31:19
(5 days ago)
GET /new/.env HTTP/1.1
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-05 22:31:39
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 104.234.32.119 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.234.32.119 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Oct 05 18:31:33.126229 2026] [security2:error] [pid 1842:tid 1842] [client 104.234.32.119:48263] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.151.7"] [uri "/wp-content/.env"] [unique_id "asQlReNnF22cL3iXCuSMGQAAAAE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-05 14:46:20
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 104.234.32.119 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.234.32.119 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Oct 05 10:46:04.324816 2026] [security2:error] [pid 22331:tid 22331] [client 104.234.32.119:51979] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.15"] [uri "/web15.dnchosting.com/.env"] [unique_id "asO4LDTqu5LPSMEqDJiKbAAAAA8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-05 14:04:06
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 104.234.32.119 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.234.32.119 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Oct 05 10:03:44.736409 2026] [security2:error] [pid 14201:tid 14201] [client 104.234.32.119:54859] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.141"] [uri "/src/.env"] [unique_id "asOuQCguxBRqqnjvOH9KtQAAAAc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
XYCoderXY
2026-10-05 12:31:18
(5 days ago)
HTTP vulnerability probe: 1 request at 2026-10-05 12:31:18 UTC. Targets: exposed secrets, config and ...
show more
HTTP vulnerability probe: 1 request at 2026-10-05 12:31:18 UTC. Targets: exposed secrets, config and source-control files. Examples: /storage/.env. No legitimate visitor of this server sends these requests. Source blocked. - Lumerux Defense (lumerux.com), automated report. Contact: [email protected]
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-05 11:28:22
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 104.234.32.119 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.234.32.119 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Oct 05 07:27:57.686956 2026] [security2:error] [pid 28124:tid 28124] [client 104.234.32.119:64399] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.153"] [uri "/admin/.env"] [unique_id "asOJvSbrN5qidD7DhMwnFQAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
on-com
2026-10-05 10:45:40
(5 days ago)
URL scan
Brute-Force
Web App Attack
๐ณ๐ฑ
Alt255
2026-10-05 09:48:54
(5 days ago)
[ti-07al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-07al] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 104.234.32.119 - - [05/Oct/2026:11:48:34 +0200] "GET /wp-admin/.env HTTP/1.1" 403 519 "-" "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/86.0.4240.183 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-05 08:15:03
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 104.234.32.119 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.234.32.119 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Oct 05 04:14:27.354888 2026] [security2:error] [pid 20165:tid 20165] [client 104.234.32.119:35939] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.104"] [uri "/audio/.env"] [unique_id "asNcY8Xecdn1jLcU3EvIxwAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-05 02:59:18
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 104.234.32.119 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.234.32.119 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 22:59:01.463270 2026] [security2:error] [pid 29632:tid 29632] [client 104.234.32.119:21769] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.150"] [uri "/blog/.env"] [unique_id "asMSdRFxpmfW6_p7-J_e3wAAAAA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-10-05 01:14:55
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 104.234.32.119 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 104.234.32.119 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Oct 04 21:14:36.815331 2026] [security2:error] [pid 9741:tid 9986] [client 104.234.32.119:45637] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "192.64.150.132"] [uri "/library/.env"] [unique_id "asL5_JUD26WkEMJmoWuvMQAAAQs"]
show less
Brute-Force
Bad Web Bot
Web App Attack